Access Restriction Bypass Affecting php package, versions [4.0.0,4.4.8)[5.0.0,5.2.4)


Severity

Recommended
0.0
medium
0
10

CVSS assessment made by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
1.6% (88th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-UNMANAGED-PHP-2335080
  • published12 Jan 2022
  • disclosed29 Jun 2007
  • creditUnknown

Introduced: 29 Jun 2007

CVE-2007-3378  (opens in a new tab)
CWE-264  (opens in a new tab)

How to fix?

Upgrade php to version 4.4.8, 5.2.4 or higher.

Overview

Affected versions of this package are vulnerable to Access Restriction Bypass. The (1) session_save_path, (2) ini_set, and (3) error_log functions in PHP 4.4.7 and earlier, and PHP 5 5.2.3 and earlier, when invoked from a .htaccess file, allow remote attackers to bypass safe_mode and open_basedir restrictions and possibly execute arbitrary commands, as demonstrated using (a) php_value, (b) php_flag, and (c) directives in .htaccess.

References

CVSS Scores

version 3.1